Modernize Ansible playbooks: replace deprecated syntax (include: -> include_tasks:, with_items -> loop), use ansible.builtin modules, organize variables (defaults/main.yml), standardize tags, add prerequisites assertions and meta/main.yml
This commit is contained in:
@@ -3,14 +3,14 @@
|
||||
# configuration Linux : Sécurisation
|
||||
# ---------------------------------------------------
|
||||
- name: Ajout du soft reboot
|
||||
lineinfile: dest=/etc/rc.local state=present line='/sbin/ctrlaltdel soft'
|
||||
ansible.builtin.lineinfile: dest=/etc/rc.local state=present line='/sbin/ctrlaltdel soft'
|
||||
tags: softreboot
|
||||
|
||||
- name: Sécurisation du vidage mémoire
|
||||
copy: src="00-vidage.conf" dest="/etc/security/limits.d/00-vidage.conf"
|
||||
ansible.builtin.copy: src="00-vidage.conf" dest="/etc/security/limits.d/00-vidage.conf"
|
||||
|
||||
- name: Application des paramètres de configuration sécurisée
|
||||
sysctl:
|
||||
ansible.builtin.sysctl:
|
||||
name={{ item.name }}
|
||||
value={{ item.value }}
|
||||
state=present
|
||||
@@ -20,6 +20,6 @@
|
||||
sysctl_set=yes
|
||||
sysctl_file=/etc/sysctl.d/97-secure-configuration.conf
|
||||
when: secure_configuration
|
||||
with_items: "{{ linux_secure_config }}"
|
||||
loop: "{{ linux_secure_config }}"
|
||||
tags: secure_config
|
||||
|
||||
|
||||
Reference in New Issue
Block a user